StackRadar

CVE-2026-41706

Medium

Advisory

Published 10 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
119
of 17,792 indexed, latest versions
Container images
142
deployed by those charts
Fix available
1 of 1
affected package

Spring Security: Open Redirect via Unvalidated Post-Login Redirect URL Stored in CookieRequestCache

Carried by container images the latest versions of 119 of 17,792 indexed charts deploy, on 142 images.

Affected packageAffected versionsFixed inImages
spring-security-webmaven3.2.10.RELEASE, 4.1.3.RELEASE, 4.1.4.RELEASE, 4.2.2.RELEASE+57 more6.5.11, 7.0.6142
OSV records
GHSA-x2r2-rvhq-2mqv

Charts affected

119 by stars
ChartLatestAffected imagesRadar Score
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
spring-security-web@5.8.11
no fix listed

Open the chart page →

5,440
apache-ranger-admindata-platform-stableVerified publisher0.2.01 of 2See more

apache-ranger-admin data-platform-stable 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
egdsandaru/apache-ranger-admin:1.0.0681baa1926f4
spring-security-web@4.2.17.RELEASE
no fix listed

Open the chart page →

8,248
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
epam/ai-dial-admin-backend:0.20.00ac5be78d7c2
spring-security-web@6.5.10
6.5.11

Open the chart page →

4,064
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
spring-security-web@4.2.13.RELEASE
no fix listed

Open the chart page →

19,835
dshackledysnixVerified publisher0.1.11 of 2See more

dshackle dysnix 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
emeraldpay/dshackle:0.12ac2a4bc66ab6
spring-security-web@5.5.3
no fix listed

Open the chart page →

2,238
shenyuerdeng2.4.211 of 2See more

shenyu erdeng 2.4.21

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
spring-security-web@5.2.1.RELEASE
no fix listed

Open the chart page →

12,516
dshackleethereum-helm-chartsVerified publisher0.1.91 of 2See more

dshackle ethereum-helm-charts 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
emeraldpay/dshackle:0.14.0126f0ae0b388
spring-security-web@5.5.3
no fix listed

Open the chart page →

2,021
scorpio-brokerfiware0.3.39 of 10See more

scorpio-broker fiware 0.3.3

9 of the 10 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-security-web@5.6.0
no fix listed

Open the chart page →

55,629
scorpiobrokerfiware0.1.29 of 10See more

scorpiobroker fiware 0.1.2

9 of the 10 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-security-web@5.6.0
no fix listed

Open the chart page →

55,629
scorpio-broker-aaiofiware0.4.151 of 1See more

scorpio-broker-aaio fiware 0.4.15

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:scorpio-aaio_2.1.0db55012043df
spring-security-web@5.6.0
no fix listed

Open the chart page →

5,289
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,876
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,761
mod-oafolio-org0.1.21 of 1See more

mod-oa folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
folioci/mod-oa:latestae3b069d4ba5
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,734
mod-serials-managementfolio-org0.1.11 of 1See more

mod-serials-management folio-org 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
folioci/mod-serials-management:latest571fa1ffe8c9
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,734
mod-service-interactionfolio-org0.1.61 of 1See more

mod-service-interaction folio-org 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
folioci/mod-service-interaction:latestf53c327a48e8
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,734
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
spring-security-web@5.5.0
no fix listed

Open the chart page →

18,203
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
spring-security-web@5.2.4.RELEASE
no fix listed

Open the chart page →

19,246
gapsgeek-cookbookVerified publisher5.4.21 of 1See more

gaps geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
housewrecker/gaps:latestf417dd0a7547
spring-security-web@5.6.2
no fix listed

Open the chart page →

8,988
komgageek-cookbookVerified publisher2.4.21 of 1See more

komga geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
gotson/komga:0.99.49b15ea6bfc30
spring-security-web@5.4.6
no fix listed

Open the chart page →

12,592
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
spring-security-web@5.3.3.RELEASE
no fix listed

Open the chart page →

17,755
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
spring-security-web@3.2.10.RELEASE
no fix listed

Open the chart page →

28,028
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.82 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

2 of the 5 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
spring-security-web@5.3.6.RELEASE
no fix listed
jingking/geonetwork-hnap:4.2.843e74ab234e1
spring-security-web@5.7.11
no fix listed

Open the chart page →

34,893
siembolgresearch0.1.62 of 4See more

siembol gresearch 0.1.6

2 of the 4 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
gresearchdev/siembol-config-editor-rest:latest91863a50afb7
spring-security-web@5.7.4
no fix listed
gresearchdev/siembol-storm-topology-manager:latest8dad36a05ebf
spring-security-web@5.7.4
no fix listed

Open the chart page →

14,327
cc-spring-appgridgainVerified publisher1.0.61 of 1See more

cc-spring-app gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
gridgain/cloud-connector:2025.5.15ab838d7d3cb
spring-security-web@6.5.7
6.5.11

Open the chart page →

1,692
nacosheidaodageshiwoVerified publisher0.1.51 of 1See more

nacos heidaodageshiwo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
nacos/nacos-server:v2.1.0dcf04549c6d7
spring-security-web@5.1.12.RELEASE
no fix listed

Open the chart page →

3,981
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
dannielkil/book-backend:lateste3b479a55a69
spring-security-web@5.7.3
no fix listed

Open the chart page →

9,148
alfiohelmforgeVerified publisher1.2.121 of 3See more

alfio helmforge 1.2.12

1 of the 3 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
alfio/alf.io:2.0-M5-26060c836a081446
spring-security-web@6.5.10
6.5.11

Open the chart page →

2,114
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
openbas/platform:2.0.5d986d80b0a75
spring-security-web@6.3.6
no fix listed

Open the chart page →

25,190
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
spring-security-web@5.8.13
no fix listed

Open the chart page →

5,363
kf-app-eaiit-at-mOfficialVerified publisher0.1.71 of 1See more

kf-app-eai it-at-m 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
spring-security-web@6.5.3
6.5.11

Open the chart page →

1,975
kron-aapm-agentkron-aapm-agent1.1.01 of 1See more

kron-aapm-agent kron-aapm-agent 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
krontechnology/aapm-agent:1.1.07feef7d2ab42
spring-security-web@5.4.1
no fix listed

Open the chart page →

8,927
nacoskubesphere-testVerified publisher0.1.11 of 1See more

nacos kubesphere-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
nacos/nacos-server:1.4.1fe6e5688cdf3
spring-security-web@5.1.12.RELEASE
no fix listed

Open the chart page →

4,156
elastictranscoderluiscajl0.46.03 of 4See more

elastictranscoder luiscajl 0.46.0

3 of the 4 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
spring-security-web@5.5.0
no fix listed
elastictranscoder/media-storage:f6d861a026208b8c2359
spring-security-web@5.5.0
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
spring-security-web@5.5.0
no fix listed

Open the chart page →

58,245
lavandaluiscajl0.0.1343 of 5See more

lavanda luiscajl 0.0.134

3 of the 5 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
lavandadelpatio/automated-download-films:0.0.2094e225a5a6f8
spring-security-web@5.3.4.RELEASE
no fix listed
lavandadelpatio/automated-download-shows:0.0.492de3c3426d2
spring-security-web@5.3.4.RELEASE
no fix listed
lavandadelpatio/filebot:0.0.671f2ccec8c0d
spring-security-web@5.4.5
no fix listed

Open the chart page →

18,258
crowdmoxVerified publisher2.4.31 of 3See more

crowd mox 2.4.3

1 of the 3 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
atlassian/crowd:5.2.2ebf761c7d437
spring-security-web@5.5.8
no fix listed

Open the chart page →

5,719
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
spring-security-web@4.1.3.RELEASE
no fix listed

Open the chart page →

55,728
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
vlebediantsev/file-system-ms-final:latest10393a89b4a8
spring-security-web@5.7.2
no fix listed

Open the chart page →

5,900
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
vlebediantsev/logic-ms:latestdf8bf38c535b
spring-security-web@5.7.2
no fix listed

Open the chart page →

6,878
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-final:latest427af418b75e
spring-security-web@5.7.2
no fix listed

Open the chart page →

5,942
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
spring-security-web@5.7.2
no fix listed

Open the chart page →

5,899
my-bloody-jenkinsodavid0.1.2181 of 1See more

my-bloody-jenkins odavid 0.1.218

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
spring-security-web@5.8.14
no fix listed

Open the chart page →

5,826
bpjstk-serviceopenshift1.0.03 of 6See more

bpjstk-service openshift 1.0.0

3 of the 6 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
andrianrf/backoffice-be:latest6036614803d4
spring-security-web@5.7.8
no fix listed
andrianrf/bpjstk-service:latest46abe878d9d8
spring-security-web@5.3.4.RELEASE
no fix listed
andrianrf/iso-client:latestba560086ce15
spring-security-web@5.3.4.RELEASE
no fix listed

Open the chart page →

35,116
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
spring-security-web@5.6.2
no fix listed

Open the chart page →

13,612
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
spring-security-web@5.6.2
no fix listed

Open the chart page →

13,573
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
spring-security-web@5.6.2
no fix listed

Open the chart page →

13,556
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
spring-security-web@5.6.2
no fix listed

Open the chart page →

13,460
management-portalradar-baseVerified publisher1.7.01 of 1See more

management-portal radar-base 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
spring-security-web@5.7.13
no fix listed

Open the chart page →

3,226
reportportalreportportal5.7.22 of 8See more

reportportal reportportal 5.7.2

2 of the 8 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
reportportal/service-api:5.7.29df41f8fb320
spring-security-web@5.2.4.RELEASE
no fix listed
reportportal/service-authorization:5.7.09e73114dbd15
spring-security-web@5.2.4.RELEASE
no fix listed

Open the chart page →

25,756
stirling-pdfrubxkubeVerified publisher0.1.21 of 1See more

stirling-pdf rubxkube 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
spring-security-web@7.0.5
7.0.6

Open the chart page →

6,303
nacossaber0.1.111 of 1See more

nacos saber 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-41706.

Container imageDigestPackageFixed in
nacos/nacos-server:v2.1.0dcf04549c6d7
spring-security-web@5.1.12.RELEASE
no fix listed

Open the chart page →

3,981

Container images carrying it

142 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
spring-security-web@5.5.0
no fix listed
1
emeraldpay/dshackle:0.14.0126f0ae0b388
spring-security-web@5.5.3
no fix listed
1
emeraldpay/dshackle:0.12ac2a4bc66ab6
spring-security-web@5.5.3
no fix listed
1
epam/ai-dial-admin-backend:0.20.00ac5be78d7c2
spring-security-web@6.5.10
6.5.11
1
fimperato/detected-info-notification:1.2.6-RELEASE6441f6545613
spring-security-web@5.7.5
no fix listed
1
flowable/flowable-rest:7.1.0b7ae287502cd
spring-security-web@6.3.3
no fix listed
1
folioci/mod-agreements:latest29c3f233a498
spring-security-web@5.8.16
no fix listed
1
folioci/mod-licenses:latestcfd6109bf477
spring-security-web@5.8.16
no fix listed
1
folioci/mod-oa:latestae3b069d4ba5
spring-security-web@5.8.16
no fix listed
1
folioci/mod-serials-management:latest571fa1ffe8c9
spring-security-web@5.8.16
no fix listed
1
folioci/mod-service-interaction:latestf53c327a48e8
spring-security-web@5.8.16
no fix listed
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
spring-security-web@5.3.6.RELEASE
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
spring-security-web@5.8.16
no fix listed
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
spring-security-web@5.3.4.RELEASE
no fix listed
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
spring-security-web@5.3.4.RELEASE
no fix listed
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
spring-security-web@5.3.4.RELEASE
no fix listed
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
spring-security-web@5.3.4.RELEASE
no fix listed
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
spring-security-web@5.3.4.RELEASE
no fix listed
1
gocd/gocd-server:v19.3.02da45cb09d57
spring-security-web@4.2.11.RELEASE
no fix listed
1
gocd/gocd-server:v26.1.0720d1012b93f
spring-security-web@4.2.20.RELEASE
no fix listed
1
gotson/komga:0.99.49b15ea6bfc30
spring-security-web@5.4.6
no fix listed
1
gresearchdev/siembol-config-editor-rest:latest91863a50afb7
spring-security-web@5.7.4
no fix listed
1
gresearchdev/siembol-storm-topology-manager:latest8dad36a05ebf
spring-security-web@5.7.4
no fix listed
1
gridgain/cloud-connector:2025.5.15ab838d7d3cb
spring-security-web@6.5.7
6.5.11
1
gurolakman/smsf-configuration:1.0.49abb3882bcbd
spring-security-web@5.6.2
no fix listed
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
spring-security-web@5.6.2
no fix listed
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
spring-security-web@5.6.2
no fix listed
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
spring-security-web@5.6.2
no fix listed
1
hazelcast/management-center:5.3.2f9d34300d330
spring-security-web@5.7.10
no fix listed
1
housewrecker/gaps:latestf417dd0a7547
spring-security-web@5.6.2
no fix listed
1
jenkins/jenkins:2.462.2-jdk1795313257a8cd
spring-security-web@5.8.14
no fix listed
1
jenkins/jenkins:2.440.3-jdk17de4fea113221
spring-security-web@5.8.11
no fix listed
1
jhipster/jhipster-registry:latest7184525acd4d
spring-security-web@5.7.3
no fix listed
1
jingking/geonetwork-hnap:4.2.843e74ab234e1
spring-security-web@5.7.11
no fix listed
1
just1not2/streama:1.10.48a2305192dec
spring-security-web@4.1.4.RELEASE
no fix listed
1
krontechnology/aapm-agent:1.1.07feef7d2ab42
spring-security-web@5.4.1
no fix listed
1
lavandadelpatio/automated-download-films:0.0.2094e225a5a6f8
spring-security-web@5.3.4.RELEASE
no fix listed
1
lavandadelpatio/automated-download-shows:0.0.492de3c3426d2
spring-security-web@5.3.4.RELEASE
no fix listed
1
lavandadelpatio/filebot:0.0.671f2ccec8c0d
spring-security-web@5.4.5
no fix listed
1
linuxserver/airsonic-advanced:11.1.4d286a7f55a59
spring-security-web@6.3.3
no fix listed
1
nacos/nacos-server:1.4.1fe6e5688cdf3
spring-security-web@5.1.12.RELEASE
no fix listed
1
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
spring-security-web@5.8.14
no fix listed
1
openbas/platform:2.0.5d986d80b0a75
spring-security-web@6.3.6
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
spring-security-web@3.2.10.RELEASE
no fix listed
1
platform9community/api-gateway:latest40a4970de568
spring-security-web@5.3.3.RELEASE
no fix listed
1
platform9community/customers-service:latest2089811e5cc6
spring-security-web@5.3.3.RELEASE
no fix listed
1
platform9community/vets-service:latestd1165c94dfb3
spring-security-web@5.3.3.RELEASE
no fix listed
1
platform9community/visits-service:latest8d11b50368c6
spring-security-web@5.3.3.RELEASE
no fix listed
1
remche/shinyproxy:2.6.18bcda8a04d3b
spring-security-web@5.5.5
no fix listed
1
reportportal/service-api:5.7.29df41f8fb320
spring-security-web@5.2.4.RELEASE
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.